kernel CVE-2023-34256
Package
kernel-5.10
(bottlerocket)
Affected versions
< 1.14.2
Patched versions
1.14.2
kernel-5.15
(bottlerocket)
< 1.14.2
1.14.2
An out-of-bounds read issue was found in the Linux kernel’s crc16 implementation in
lib/crc16.c
when called fromfs/ext4/super.c
.ext4_group_desc_csum
does not properly check an offset which may lead to out-of-bounds read.